Potential for cross-site scripting in PostHog-js
Moderate severity
GitHub Reviewed
Published
May 22, 2023
in
PostHog/posthog-js
•
Updated Nov 12, 2023
Description
Published to the GitHub Advisory Database
May 22, 2023
Reviewed
May 22, 2023
Published by the National Vulnerability Database
May 27, 2023
Last updated
Nov 12, 2023
Impact
Potential for cross-site scripting in
posthog-js
.Patches
The problem has been patched in
posthog-js
version 1.57.2.Workarounds
References
We will publish details of the vulnerability in 30 days as per our security policy.
References